Page 27 - Python Software Foundation News Today : Breaking News, Live Updates & Top Stories | Vimarsana

Stay updated with breaking news from Python software foundation. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.

Top News In Python Software Foundation Today - Breaking & Trending Today

Google Cloud donates $350K to fund Python projects


Google Cloud donates $350K to fund Python projects
Google Cloud donates $350K to fund Python projects
Tech giants donates to Python Software Foundation to support CPython maintenance, foundational Python tools and malware detection for the PyPI package repo.
Credit: Dreamstime
Google Cloud has donated US$350,000 to the Python Software Foundation, with the goals of aiding CPython development, improving foundational Python tools, and beefing up the security of the Python package ecosystem.
Three specific projects will be supported by the donation, including productionised malware detection for the PyPI (Python Package Index) repo of software for Python. Google Cloud uses the index to distribute hundreds of client libraries and developer tools, including the TensorFlow open source machine learning library. ....

Python Software Foundation , Python Package Index , Google Cloud , Google Cloud Public Datasets , Bigquery Sandbox , Google App Engine , பைதான் மென்பொருள் அடித்தளம் , பைதான் ப்யாகேஜ் குறியீட்டு , கூகிள் மேகம் , கூகிள் செயலி இயந்திரம் ,

Researcher hacks over 35 tech firms in novel supply chain attack -- Science & Technology -- Sott.net


Tue, 09 Feb 2021 18:04 UTC
A researcher managed to breach over 35 major companies internal systems, including Microsoft, Apple, PayPal, Shopify, Netflix, Yelp, Tesla, and Uber, in a novel software supply chain attack.
The attack comprised uploading malware to open source repositories including PyPI, npm, and RubyGems, which then got distributed downstream automatically into the company s internal applications.
Unlike traditional typosquatting attacks that rely on social engineering tactics or the victim misspelling a package name,
this particular supply chain attack is more sophisticated as it needed no action by the victim, who automatically received the malicious packages.
This is because the attack leveraged a unique design flaw of the open-source ecosystems called ....

Alex Birsan , Dustin Ingram , Justin Gardner , Birsan Hackerone , Python Software Foundation , Azure Artifactory , Azure Artifacts , Apple Security Bounty , Nexus Repository Manager , டஸ்டின் இஂக்ரம் , ஜஸ்டின் கார்ட்னர் , பைதான் மென்பொருள் அடித்தளம் , நீலமான கலைப்பொருள் , நீலமான கலைப்பொருட்கள் , ஆப்பிள் பாதுகாப்பு பவுண்டரி , நெக்ஸஸ் களஞ்சியம் மேலாளர் ,